
reave
WIP Post-exploitation framework tailored for hypervisors.

WIP Post-exploitation framework tailored for hypervisors.

Multi-technique vulnerability detector for CVE-2025-55182 in React/Next.js applications. Tests gadget chains, RCE payloads, and WAF bypass variants…

Exploit tool for CVE-2018-15133, a Laravel unserialize RCE, with multiprocessing support for scanning and exploiting vulnerable endpoints.

Generates five .NET deserialization payload formats for CVE-2026-56158, delivers them over HTTP/SOAP/JSON endpoints, includes mock server, scanner,…

Proof-of-concept exploit for CVE-2026-33017 demonstrating unauthenticated remote code execution in Langflow via malicious CustomComponent injection…

Proof-of-concept exploit for CVE-2025-55182: unauthenticated RCE in React Server Components via unsafe deserialization, enabling arbitrary command…

Mass exploitation script for CVE-2021-24499, an unauthenticated arbitrary file upload vulnerability in the Workreap WordPress theme, enabling remote…